CVE-2019-20000 to CVE-2019-20999
142 CVEs with public proof-of-concept exploits.
- CVE-2019-200091 PoCAn issue was discovered in GNU LibreDWG before 0.93. Crafted input will lead to an attempted excessive memory allocation in…
- CVE-2019-200101 PoCAn issue was discovered in GNU LibreDWG 0.92. There is a use-after-free in resolve_objectref_vector in decode.c.
- CVE-2019-200111 PoCAn issue was discovered in GNU LibreDWG 0.92. There is a heap-based buffer over-read in decode_R13_R2000 in decode.c.
- CVE-2019-200121 PoCAn issue was discovered in GNU LibreDWG 0.92. Crafted input will lead to an attempted excessive memory allocation in…
- CVE-2019-200131 PoCAn issue was discovered in GNU LibreDWG before 0.93. Crafted input will lead to an attempted excessive memory allocation in decode_3dsolid…
- CVE-2019-200141 PoCAn issue was discovered in GNU LibreDWG before 0.93. There is a double-free in dwg_free in free.c.
- CVE-2019-200151 PoCAn issue was discovered in GNU LibreDWG 0.92. Crafted input will lead to an attempted excessive memory allocation in…
- CVE-2019-200161 PoClibmysofa before 2019-11-24 does not properly restrict recursive function calls, as demonstrated by reports of stack consumption in…
- CVE-2019-200171 PoCA stack-based buffer over-read was discovered in Mat_VarReadNextInfo5 in mat5.c in matio 1.5.17.
- CVE-2019-200181 PoCA stack-based buffer over-read was discovered in ReadNextCell in mat5.c in matio 1.5.17.
- CVE-2019-200191 PoCAn attempted excessive memory allocation was discovered in Mat_VarRead5 in mat5.c in matio 1.5.17.
- CVE-2019-200201 PoCA stack-based buffer over-read was discovered in ReadNextStructField in mat5.c in matio 1.5.17.
- CVE-2019-200211 PoCA heap-based buffer over-read was discovered in canUnpack in p_mach.cpp in UPX 3.95 via a crafted Mach-O file.
- CVE-2019-200221 PoCAn invalid memory address dereference was discovered in load_pnm in frompnm.c in libsixel before 1.8.3.
- CVE-2019-200231 PoCA memory leak was discovered in image_buffer_resize in fromsixel.c in libsixel 1.8.4.
- CVE-2019-200241 PoCA heap-based buffer overflow was discovered in image_buffer_resize in fromsixel.c in libsixel before 1.8.4.
- CVE-2019-200411 PoCwp_kses_bad_protocol in wp-includes/kses.php in WordPress before 5.3.1 mishandles the HTML5 colon named entity, allowing attackers to…
- CVE-2019-200421 PoCIn wp-includes/formatting.php in WordPress 3.7 to 5.3.0, the function wp_targeted_link_rel() can be used in a particular way to result in…
- CVE-2019-200431 PoCIn in wp-includes/rest-api/endpoints/class-wp-rest-posts-controller.php in WordPress 3.7 to 5.3.0, authenticated users who do not have the…
- CVE-2019-200472 PoCsAn issue was discovered on Alcatel-Lucent OmniVista 4760 devices, and 8770 devices before 4.1.2. An incorrect web server configuration…
- CVE-2019-200482 PoCsAn issue was discovered on Alcatel-Lucent OmniVista 8770 devices before 4.1.2. An authenticated remote attacker, with elevated privileges…
- CVE-2019-200492 PoCsAn issue was discovered on Alcatel-Lucent OmniVista 4760 devices. A remote unauthenticated attacker can chain a directory traversal (which…
- CVE-2019-200511 PoCA floating-point exception was discovered in PackLinuxElf::elf_hash in p_lx_elf.cpp in UPX 3.95. The vulnerability causes an application…
- CVE-2019-200521 PoCA memory leak was discovered in Mat_VarCalloc in mat.c in matio 1.5.17 because SafeMulDims does not consider the rank==0 case.
- CVE-2019-200531 PoCAn invalid memory address dereference was discovered in the canUnpack function in p_mach.cpp in UPX 3.95 via a crafted Mach-O file.
- CVE-2019-200551 PoCLuquidPixels LiquiFire OS 4.8.0 allows SSRF via the call%3Durl substring followed by a URL in square brackets.
- CVE-2019-200561 PoCstb_image.h (aka the stb image loader) 2.23, as used in libsixel and other products, has an assertion failure in stbi__shiftsigned.
- CVE-2019-200591 PoCpayment_manage.ajax.php and various *_manage.ajax.php in MFScripts YetiShare 3.5.2 through 4.5.4 directly insert values from the…
- CVE-2019-200631 PoChdf/dataobject.c in libmysofa before 0.8 has an uninitialized use of memory, as demonstrated by mysofa2json.
- CVE-2019-200711 PoCOn Netis DL4323 devices, CSRF exists via form2logaction.cgi to delete all logs.
- CVE-2019-200721 PoCOn Netis DL4323 devices, XSS exists via the form2Ddns.cgi hostname parameter (Dynamic DNS Configuration).
- CVE-2019-200731 PoCOn Netis DL4323 devices, XSS exists via the form2userconfig.cgi username parameter (User Account Configuration).
- CVE-2019-200751 PoCOn Netis DL4323 devices, pingrtt_v6.html has XSS (Ping6 Diagnostic).
- CVE-2019-200762 PoCsOn Netis DL4323 devices, XSS exists via the form2Ddns.cgi username parameter (DynDns settings of the Dynamic DNS Configuration).
- CVE-2019-200821 PoCASUS RT-N53 3.0.0.4.376.3754 devices have a buffer overflow via a long lan_dns1_x or lan_dns2_x parameter to Advanced_LAN_Content.asp.
- CVE-2019-2008512 PoCsKEVTVT NVMS-1000 devices allow GET /.. Directory Traversal
- CVE-2019-200861 PoCGoPro GPMF-parser 1.2.3 has a heap-based buffer over-read in GPMF_Next in GPMF_parser.c.
- CVE-2019-200871 PoCGoPro GPMF-parser 1.2.3 has a heap-based buffer over-read in GPMF_seekToSamples in GPMF-parse.c for the "matching tags" feature.
- CVE-2019-200881 PoCGoPro GPMF-parser 1.2.3 has a heap-based buffer over-read in GetPayload in GPMF_mp4reader.c.
- CVE-2019-200891 PoCGoPro GPMF-parser 1.2.3 has an heap-based buffer over-read in GPMF_SeekToSamples in GPMF_parse.c for the size calculation.
- CVE-2019-200901 PoCAn issue was discovered in Bento4 1.5.1.0. There is a use-after-free in AP4_Sample::GetOffset in Core/Ap4Sample.h when called from…
- CVE-2019-200911 PoCAn issue was discovered in Bento4 1.5.1.0. There is a NULL pointer dereference in AP4_Descriptor::GetTag in mp42ts when called from…
- CVE-2019-200921 PoCAn issue was discovered in Bento4 1.5.1.0. There is a NULL pointer dereference in AP4_Descriptor::GetTag in mp42ts when called from…
- CVE-2019-200931 PoCThe PoDoFo::PdfVariant::DelayedLoad function in PdfVariant.h in PoDoFo 0.9.6 allows remote attackers to cause a denial of service (NULL…
- CVE-2019-200941 PoCAn issue was discovered in libsixel 1.8.4. There is a heap-based buffer overflow in the function gif_init_frame at fromgif.c.
- CVE-2019-200981 PoCThe VerifySmtpServerConnection!add.jspa component in Atlassian Jira Server and Data Center before version 8.7.0 is vulnerable to…
- CVE-2019-200991 PoCThe VerifyPopServerConnection!add.jspa component in Atlassian Jira Server and Data Center before version 8.7.0 is vulnerable to cross-site…
- CVE-2019-201001 PoCThe Atlassian Application Links plugin is vulnerable to cross-site request forgery (CSRF). The following versions are affected: all…
- CVE-2019-201391 PoCIn Nagios XI 5.6.9, XSS exists via the nocscreenapi.php host, hostgroup, or servicegroup parameter, or the schedulereport.php hour or…
- CVE-2019-201401 PoCAn issue was discovered in libsixel 1.8.4. There is a heap-based buffer overflow in the function gif_out_code at fromgif.c.
- CVE-2019-201411 PoCAn XSS issue was discovered in the Laborator Neon theme 2.0 for WordPress via the data/autosuggest-remote.php q parameter.
- CVE-2019-201491 PoCctorName in index.js in kind-of v6.0.2 allows external user input to overwrite certain internal attributes via a conflicting name, as…
- CVE-2019-201531 PoCAn issue was discovered in Determine (formerly Selectica) Contract Lifecycle Management (CLM) in v5.4. An XML external entity (XXE)…
- CVE-2019-201541 PoCAn issue was discovered in Determine (formerly Selectica) Contract Lifecycle Management (CLM) v5.4. A cross-site scripting (XSS)…
- CVE-2019-201551 PoCAn issue was discovered in report_edit.jsp in Determine (formerly Selectica) Contract Lifecycle Management (CLM) v5.4. Any authenticated…
- CVE-2019-201591 PoCAn issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a memory leak in dinf_New() in…
- CVE-2019-201601 PoCAn issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a stack-based buffer overflow in the function…
- CVE-2019-201611 PoCAn issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is heap-based buffer overflow in the function…
- CVE-2019-201621 PoCAn issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is heap-based buffer overflow in the function…
- CVE-2019-201631 PoCAn issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the function…
- CVE-2019-201641 PoCAn issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the function…
- CVE-2019-201651 PoCAn issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the function…
- CVE-2019-201661 PoCAn issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the function…
- CVE-2019-201671 PoCAn issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the function…
- CVE-2019-201681 PoCAn issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a use-after-free in the function…
- CVE-2019-201691 PoCAn issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a use-after-free in the function trak_Read() in…
- CVE-2019-201701 PoCAn issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is an invalid pointer dereference in the function…
- CVE-2019-201711 PoCAn issue was discovered in GPAC version 0.5.2 and 0.9.0-development-20191109. There are memory leaks in metx_New in…
- CVE-2019-201741 PoCAuth0 Lock before 11.21.0 allows XSS when additionalSignUpFields is used with an untrusted placeholder.
- CVE-2019-201751 PoCAn issue was discovered in ide_dma_cb() in hw/ide/core.c in QEMU 2.4.0 through 4.2.0. The guest system can crash the QEMU process in the…
- CVE-2019-201761 PoCIn Pure-FTPd 1.0.49, a stack exhaustion issue was discovered in the listdir function in ls.c.
- CVE-2019-201831 PoCuploadimage.php in Employee Records System 1.0 allows upload and execution of arbitrary PHP code because file-extension validation is only…
- CVE-2019-201973 PoCsIn Nagios XI 5.6.9, an authenticated user is able to execute arbitrary OS commands via shell metacharacters in the id parameter to…
- CVE-2019-201981 PoCAn issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_ent_ok() mishandles recursion, leading to stack consumption for a…
- CVE-2019-202021 PoCAn issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_char_content() tries to use realloc on a block that was not…
- CVE-2019-202031 PoCThe Authorized Addresses feature in the Postie plugin 1.9.40 for WordPress allows remote attackers to publish posts by spoofing the From…
- CVE-2019-202043 PoCsThe Postie plugin 1.9.40 for WordPress allows XSS, as demonstrated by a certain payload with jaVasCript:/* at the beginning and a crafted…
- CVE-2019-202051 PoClibsixel 1.8.4 has an integer overflow in sixel_frame_resize in frame.c.
- CVE-2019-202081 PoCdimC_Read in isomedia/box_code_3gpp.c in GPAC from 0.5.2 to 0.8.0 has a stack-based buffer overflow.
- CVE-2019-202093 PoCsThe CTHthemes CityBook before 2.3.4, TownHub before 1.0.6, and EasyBook before 1.2.2 themes for WordPress allow nsecure Direct Object…
- CVE-2019-202104 PoCsThe CTHthemes CityBook before 2.3.4, TownHub before 1.0.6, and EasyBook before 1.2.2 themes for WordPress allow Reflected XSS via a search…
- CVE-2019-202113 PoCsThe CTHthemes CityBook before 2.3.4, TownHub before 1.0.6, and EasyBook before 1.2.2 themes for WordPress allow Persistent XSS via Listing…
- CVE-2019-202123 PoCsThe CTHthemes CityBook before 2.3.4, TownHub before 1.0.6, and EasyBook before 1.2.2 themes for WordPress allow Persistent XSS via the…
- CVE-2019-202152 PoCsD-Link DIR-859 1.05 and 1.06B01 Beta01 devices allow remote attackers to execute arbitrary OS commands via a urn: to the M-SEARCH method…
- CVE-2019-202191 PoCngiflib 0.4 has a heap-based buffer over-read in GifIndexToTrueColor in ngiflib.c.
- CVE-2019-202245 PoCsnetflow_get_stats in functions_netflow.php in Pandora FMS 7.0NG allows remote authenticated users to execute arbitrary OS commands via…
- CVE-2019-203261 PoCA heap-based buffer overflow in _cairo_image_surface_create_from_jpeg() in extensions/cairo_io/cairo-image-surface-jpeg.c in GNOME gThumb…
- CVE-2019-203342 PoCsIn Netwide Assembler (NASM) 2.14.02, stack consumption occurs in expr# functions in asm/eval.c. This potentially affects the relationships…
- CVE-2019-203481 PoCOKER G232V1 v1.03.02.20161129 devices provide a root terminal on a UART serial interface without proper access control. This allows…
- CVE-2019-203521 PoCIn Netwide Assembler (NASM) 2.15rc0, a heap-based buffer over-read occurs (via a crafted .asm file) in set_text_free when called from…
- CVE-2019-203543 PoCsThe web application component of piSignage before 2.6.4 allows a remote attacker (authenticated as a low-privilege user) to download…
- CVE-2019-203572 PoCsA Persistent Arbitrary Code Execution vulnerability exists in the Trend Micro Security 2020 (v160 and 2019 (v15) consumer familiy of…
- CVE-2019-203614 PoCsThere was a flaw in the WordPress plugin, Email Subscribers & Newsletters before 4.3.1, that allowed SQL statements to be passed to the…
- CVE-2019-203723 PoCsNGINX before 1.17.7, with certain error_page configurations, allows HTTP request smuggling, as demonstrated by the ability of an attacker…
- CVE-2019-203841 PoCGentoo Portage through 2.3.84 allows local users to place a Trojan horse plugin in the /usr/lib64/nagios/plugins directory by leveraging…
- CVE-2019-203891 PoCAn XSS issue was identified on the Subrion CMS 4.2.1 /panel/configuration/general settings page. A remote attacker can inject arbitrary…
- CVE-2019-203901 PoCA Cross-Site Request Forgery (CSRF) vulnerability was discovered in Subrion CMS 4.2.1 that allows a remote attacker to remove files on the…
- CVE-2019-204211 PoCIn Jp2Image::readMetadata() in jp2image.cpp in Exiv2 0.27.2, an input file can result in an infinite loop and hang, with high CPU…
- CVE-2019-204341 PoCAn issue was discovered in WSO2 API Manager 2.6.0. A potential Reflected Cross-Site Scripting (XSS) vulnerability has been identified in…
- CVE-2019-204351 PoCAn issue was discovered in WSO2 API Manager 2.6.0. A reflected XSS attack could be performed in the inline API documentation editor page…
- CVE-2019-204361 PoCAn issue was discovered in WSO2 API Manager 2.6.0, WSO2 IS as Key Manager 5.7.0, and WSO2 Identity Server 5.8.0. If there is a claim…
- CVE-2019-204371 PoCAn issue was discovered in WSO2 API Manager 2.6.0, WSO2 IS as Key Manager 5.7.0, and WSO2 Identity Server 5.8.0. When a custom claim…
- CVE-2019-204391 PoCAn issue was discovered in WSO2 API Manager 2.6.0. A potential Reflected Cross-Site Scripting (XSS) vulnerability has been identified in…
- CVE-2019-204401 PoCAn issue was discovered in WSO2 API Manager 2.6.0. A potential Reflected Cross-Site Scripting (XSS) vulnerability has been identified in…
- CVE-2019-204411 PoCAn issue was discovered in WSO2 API Manager 2.6.0. A potential Stored Cross-Site Scripting (XSS) vulnerability has been identified in the…
- CVE-2019-204431 PoCAn issue was discovered in WSO2 API Manager 2.6.0, WSO2 Enterprise Integrator 6.5.0, WSO2 IS as Key Manager 5.7.0, and WSO2 Identity…
- CVE-2019-204441 PoCHttpObjectDecoder.java in Netty before 4.1.44 allows an HTTP header that lacks a colon, which might be interpreted as a separate header…
- CVE-2019-204472 PoCsJobberbase 2.0 has SQL injection via the PATH_INFO to the jobs-in endpoint.
- CVE-2019-204511 PoCThe HTTP API in Prismview System 9 11.10.17.00 and Prismview Player 11 13.09.1100 allows remote code execution by uploading…
- CVE-2019-204551 PoCGateways/Gateway.php in Heartland & Global Payments PHP SDK before 2.0.0 does not enforce SSL certificate validations.
- CVE-2019-204771 PoCPyYAML 5.1 through 5.1.2 has insufficient restrictions on the load and load_all functions because of a class deserialization issue, e.g.,…
- CVE-2019-204781 PoCIn ruamel.yaml through 0.16.7, the load method allows remote code execution if the application calls this method with an untrusted…
- CVE-2019-204831 PoCAn issue was discovered in Viki Vera 4.9.1.26180. An attacker could set a user's last name to an XSS Payload, and read another user's…
- CVE-2019-204841 PoCAn issue was discovered in Viki Vera 4.9.1.26180. A user without access to a project could download or upload project files by opening the…
- CVE-2019-204993 PoCsD-Link DWL-2600AP 4.2.0.15 Rev A devices have an authenticated OS command injection vulnerability via the Restore Configuration…
- CVE-2019-205001 PoCKEVD-Link DWL-2600AP 4.2.0.15 Rev A devices have an authenticated OS command injection vulnerability via the Save Configuration functionality…
- CVE-2019-205011 PoCD-Link DWL-2600AP 4.2.0.15 Rev A devices have an authenticated OS command injection vulnerability via the Upgrade Firmware functionality…
- CVE-2019-205021 PoCAn issue was discovered in EFS Easy Chat Server 3.1. There is a buffer overflow via a long body2.ghp message parameter.
- CVE-2019-205041 PoCservice/krashrpt.php in Quest KACE K1000 Systems Management Appliance before 6.4 SP3 (6.4.120822) allows a remote attacker to execute code…
- CVE-2019-206281 PoCAn issue was discovered in libgpac.a in GPAC before 0.8.0, as demonstrated by MP4Box. It contains a Use-After-Free vulnerability in…
- CVE-2019-206291 PoCAn issue was discovered in libgpac.a in GPAC before 0.8.0, as demonstrated by MP4Box. It contains a heap-based buffer over-read in…
- CVE-2019-206301 PoCAn issue was discovered in libgpac.a in GPAC before 0.8.0, as demonstrated by MP4Box. It contains a heap-based buffer over-read in…
- CVE-2019-206311 PoCAn issue was discovered in libgpac.a in GPAC before 0.8.0, as demonstrated by MP4Box. It contains an invalid pointer dereference in…
- CVE-2019-206321 PoCAn issue was discovered in libgpac.a in GPAC before 0.8.0, as demonstrated by MP4Box. It contains an invalid pointer dereference in…
- CVE-2019-206331 PoCGNU patch through 2.7.6 contains a free(p_line[p_end]) Double Free vulnerability in the function another_hunk in pch.c that can cause a…
- CVE-2019-207982 PoCsAn XSS issue was discovered in handler_server_info.c in Cherokee through 1.2.104. The requested URL is improperly displayed on the About…
- CVE-2019-207992 PoCsIn Cherokee through 1.2.104, multiple memory corruption errors may be used by a remote attacker to destabilize the work of a server.
- CVE-2019-208002 PoCsIn Cherokee through 1.2.104, remote attackers can trigger an out-of-bounds write in cherokee_handler_cgi_add_env_pair in handler_cgi.c by…
- CVE-2019-208011 PoCAn issue was discovered in the Readdle Documents app before 6.9.7 for iOS. The application's file-transfer web server allows for…
- CVE-2019-208021 PoCAn issue was discovered in the Readdle Documents app before 6.9.7 for iOS. The application's file-transfer web server improperly displays…
- CVE-2019-208031 PoCGila CMS before 1.11.6 has reflected XSS via the admin/content/postcategory id parameter, which is mishandled for g_preview_theme.
- CVE-2019-208042 PoCsGila CMS before 1.11.6 allows CSRF with resultant XSS via the admin/themes URI, leading to compromise of the admin account.
- CVE-2019-209081 PoCAn issue was discovered in drivers/firmware/efi/efi.c in the Linux kernel before 5.4. Incorrect access permissions for the efivar_ssdt…
- CVE-2019-209091 PoCAn issue was discovered in GNU LibreDWG through 0.9.3. There is a NULL pointer dereference in the function dwg_encode_LWPOLYLINE in…
- CVE-2019-209101 PoCAn issue was discovered in GNU LibreDWG through 0.9.3. Crafted input will lead to a heap-based buffer over-read in decode_R13_R2000 in…
- CVE-2019-209111 PoCAn issue was discovered in GNU LibreDWG through 0.9.3. Crafted input will lead to denial of service in bit_calc_CRC in bits.c, related to…
- CVE-2019-209121 PoCAn issue was discovered in GNU LibreDWG through 0.9.3. Crafted input will lead to a stack overflow in bits.c, possibly related to…
- CVE-2019-209131 PoCAn issue was discovered in GNU LibreDWG through 0.9.3. Crafted input will lead to a heap-based buffer over-read in dwg_encode_entity in…
- CVE-2019-209141 PoCAn issue was discovered in GNU LibreDWG through 0.9.3. There is a NULL pointer dereference in the function…
- CVE-2019-209151 PoCAn issue was discovered in GNU LibreDWG through 0.9.3. Crafted input will lead to a heap-based buffer over-read in bit_write_TF in bits.c.
- CVE-2019-209161 PoCThe pip package before 19.2 for Python allows Directory Traversal when a URL is given in an install command, because a Content-Disposition…
- CVE-2019-209336 PoCsInfluxDB before 1.7.6 has an authentication bypass vulnerability in the authenticate function in services/httpd/handler.go because a JWT…